Command injection in PentestAgent's MCP HTTP server
NVD·low signal
CVE-2026-90617, published 2026-09-14 at 5.5 MEDIUM, affects GH05TCREW PentestAgent up to commit cf882dab: the `run_task` function in `interface/main.py`, part of the MCP HTTP Server component, allows OS command injection through parameter manipulation. It is a small project rather than a widely deployed one, so treat it as a shape rather than an emergency: a security agent exposing its task runner over MCP HTTP without sanitizing the task string.